/* * Copyright (c) 2006, 2020, Oracle and/or its affiliates. All rights reserved. * DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS FILE HEADER. * * This code is free software; you can redistribute it and/or modify it * under the terms of the GNU General Public License version 2 only, as * published by the Free Software Foundation. * * This code is distributed in the hope that it will be useful, but WITHOUT * ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or * FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License * version 2 for more details (a copy is included in the LICENSE file that * accompanied this code). * * You should have received a copy of the GNU General Public License version * 2 along with this work; if not, write to the Free Software Foundation, * Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA. * * Please contact Oracle, 500 Oracle Parkway, Redwood Shores, CA 94065 USA * or visit www.oracle.com if you need additional information or have any * questions.
*/
/* * @test * @bug 6405536 8042967 * @summary basic test of SHA1withECDSA and NONEwithECDSA signing/verifying * @author Andreas Sterbenz * @library /test/lib .. * @library ../../../../java/security/testlibrary * @key randomness * @modules jdk.crypto.cryptoki * @run main/othervm TestECDSA * @run main/othervm -Djava.security.manager=allow TestECDSA sm policy
*/
// data for test 1, original and SHA-1 hashed privatefinalstaticbyte[] data1Raw = b("0102030405060708090a0b0c0d0e0f10111213"); privatefinalstaticbyte[] data1SHA = b("00:e2:5f:c9:1c:8f:d6:8c:6a:dc:c6:bd:f0:46:60:5e:a2:cd:8d:ad");
// data for test 2 (invalid signatures) privatefinalstaticbyte[] data2Raw = {}; privatefinalstaticbyte[] data2SHA = b("da:39:a3:ee:5e:6b:4b:0d:32:55:bf:ef:95:60:18:90:af:d8:07:09");
privatevoid testSigning(Provider provider,
PrivateKey privateKey,
PublicKey publicKey, boolean p1363Format) throws Exception { byte[] data = newbyte[2048]; new Random().nextBytes(data);
// sign random data using SHA1withECDSA and verify using // SHA1withECDSA and NONEwithECDSA
Signature s; if (p1363Format) {
s = Signature.getInstance("SHA1withECDSAinP1363Format", provider);
} else {
s = Signature.getInstance("SHA1withECDSA", provider);
}
s.initSign(privateKey);
s.update(data); byte[] s1 = s.sign();
s.initVerify(publicKey);
s.update(data); if (!s.verify(s1)) { thrownew Exception("Sign/verify 1 failed");
}
if (p1363Format) {
s = Signature.getInstance("NONEwithECDSAinP1363Format", provider);
} else {
s = Signature.getInstance("NONEwithECDSA", provider);
}
MessageDigest md = MessageDigest.getInstance("SHA-1"); byte[] digest = md.digest(data);
s.initVerify(publicKey);
s.update(digest); if (!s.verify(s1)) { thrownew Exception("Sign/verify 2 failed");
}
// sign random data using NONEwithECDSA and verify using // SHA1withECDSA and NONEwithECDSA
s.initSign(privateKey);
s.update(digest); byte[] s2 = s.sign();
s.initVerify(publicKey);
s.update(digest); if (!s.verify(s2)) { thrownew Exception("Sign/verify 3 failed");
}
if (p1363Format) {
s = Signature.getInstance("SHA1withECDSAinP1363Format", provider);
} else {
s = Signature.getInstance("SHA1withECDSA", provider);
}
s.initVerify(publicKey);
s.update(data); if (!s.verify(s2)) { thrownew Exception("Sign/verify 4 failed");
}
/* // XXX session release bug in P11Signature // test behavior if data of incorrect length is passed s = Signature.getInstance("NONEwithECDSA", provider); s.initSign(privateKey); s.update(new byte[8]); s.update(new byte[640]); try { s.sign(); throw new Exception("No error NONEwithECDSA signing long data"); } catch (SignatureException e) { System.out.println("OK: " + e); } System.out.println("sign/verify test ok");
/**/
}
Die Informationen auf dieser Webseite wurden
nach bestem Wissen sorgfältig zusammengestellt. Es wird jedoch weder Vollständigkeit, noch Richtigkeit,
noch Qualität der bereit gestellten Informationen zugesichert.
Bemerkung:
Die farbliche Syntaxdarstellung und die Messung sind noch experimentell.